- 9f10979 Merge branch 'mbedtls-3.6-restricted' into mbedtls-3.6.1rc0-pr by David Horstmann · 11 months ago
- 9f44c88 Rename some "new_session_tickets" symbols by Ronald Cron · 11 months ago
- ba45a44 Move session tickets getter functions to ssl_misc.h by Ronald Cron · 11 months ago
- 069bccd Call psa_crypto_init in the library when required for TLS 1.3 by Gilles Peskine · 11 months ago
- 4002e6f Merge remote-tracking branch 'mbedtls-3.6' into mbedtls-3.6-restricted by Gilles Peskine · 11 months ago
- 565da76 Fix typos in comments by Manuel Pégourié-Gonnard · 11 months ago
- ce60330 Merge 1.2 and 1.3 certificate verification by Manuel Pégourié-Gonnard · 11 months ago
- 4938b69 Make mbedtls_ssl_check_cert_usage() work for 1.3 by Manuel Pégourié-Gonnard · 12 months ago
- 96a0c5c Clean up mbedtls_ssl_check_cert_usage() by Manuel Pégourié-Gonnard · 12 months ago
- c9184fe Fix server mode only build of v3.6 with MBEDTLS_SSL_CLI_C unset (fixes #9186) by Michael Schuster · 1 year, 2 months ago
- 5bc5263 Add code improvments and refactoring in dealing with ALPN by Waleed Elmelegy · 1 year, 5 months ago
- 883f77c Add mbedtls_ssl_session_set_alpn() function by Waleed Elmelegy · 1 year, 5 months ago
- fd4c0c8 tls13: cli: Fix comment by Ronald Cron · 1 year, 5 months ago
- aa35931 tls13: cli: Move definition of MBEDTLS_SSL_EARLY_DATA_STATE_xyz by Ronald Cron · 1 year, 5 months ago
- 8571804 tls13: srv: Enforce maximum size of early data by Ronald Cron · 1 year, 5 months ago
- d6d32b9 tls13: Improve declaration and doc of early data status by Ronald Cron · 1 year, 5 months ago
- b9a9b1f tls13: Fix/Improve comments by Ronald Cron · 1 year, 5 months ago
- 5fbd270 tls13: Use a flag not a counter for CCS and HRR handling by Ronald Cron · 1 year, 5 months ago
- 90e2233 tls13: cli: Refine early data status by Ronald Cron · 1 year, 6 months ago
- fe59ff7 tls13: Send dummy CCS only once by Ronald Cron · 1 year, 6 months ago
- 32c28ce Merge pull request #8715 from valeriosetti/issue7964 by Manuel Pégourié-Gonnard · 1 year, 6 months ago
- 78a38f6 tls13: srv: Do not use early_data_status by Ronald Cron · 1 year, 6 months ago
- 3b90345 Revert "tls13: Introduce early_data_state SSL context field" by Ronald Cron · 1 year, 6 months ago
- 0883b8b tls13: Introduce early_data_state SSL context field by Ronald Cron · 1 year, 6 months ago
- 5d0ae90 tls13: srv: Refine early data status by Ronald Cron · 1 year, 7 months ago
- 25b282e x509: move internal functions declarations to a private header by Valerio Setti · 1 year, 6 months ago
- d929106 ssl_ciphersuites: move internal functions declarations to a private header by Valerio Setti · 1 year, 6 months ago
- f1ba193 Merge pull request #8526 from yanrayw/issue/7011/send_record_size_limit_ext by Tom Cosgrove · 1 year, 7 months ago
- f0ccf46 Add minor cosmetic changes to record size limit changelog and comments by Waleed Elmelegy · 1 year, 7 months ago
- ae2213c Merge pull request #8414 from lpy4105/issue/uniform-ssl-check-function by Ronald Cron · 1 year, 7 months ago
- f501790 Improve comments across record size limit changes by Waleed Elmelegy · 1 year, 7 months ago
- 148dfb6 Change record size limit writing function by Waleed Elmelegy · 1 year, 7 months ago
- a8b4291 tls13: add generic function to write Record Size Limit ext by Yanray Wang · 1 year, 9 months ago
- 3a6059b Merge pull request #7455 from KloolK/record-size-limit/comply-with-limit by Tom Cosgrove · 1 year, 7 months ago
- e2d3db5 Update mbedtls_ssl_get_output_record_size_limit signature by Waleed-Ziad Maamoun-Elmelegy · 1 year, 7 months ago
- 94a42cc Add tls13 in ticket flags helper function names by Pengyu Lv · 1 year, 8 months ago
- abd844f Fix wrong format in the function doc by Pengyu Lv · 1 year, 8 months ago
- 02e72f6 Reword return value description for mbedtls_ssl_tls13_is_kex_mode_supported by Pengyu Lv · 1 year, 8 months ago
- b2cfafb Consistent renaming by Pengyu Lv · 1 year, 9 months ago
- 2333b82 tls13: srv: rename mbedtls_ssl_tls13_check_kex_modes by Pengyu Lv · 1 year, 9 months ago
- 0a1ff2b Consistent renaming by Pengyu Lv · 1 year, 9 months ago
- 4f537f7 tls13: rename mbedtls_ssl_session_check_ticket_flags by Pengyu Lv · 1 year, 9 months ago
- fc2cb96 tls13: rename mbedtls_ssl_conf_tls13_check_kex_modes by Pengyu Lv · 1 year, 9 months ago
- 60a2256 tls13: change return value of mbedtls_ssl_conf_tls13_check_kex_modes by Pengyu Lv · 1 year, 9 months ago
- 9aec1c7 Add record size checking during handshake by Waleed Elmelegy · 1 year, 8 months ago
- f482dcc Comply with the received Record Size Limit extension by Jan Bruckner · 2 years, 4 months ago
- c59c586 change prototype of `write_early_data_ext` by Jerry Yu · 1 year, 8 months ago
- 5233539 share write_early_data_ext function by Jerry Yu · 1 year, 8 months ago
- 4da7c22 add early data flag check function by Jerry Yu · 1 year, 8 months ago
- c37ad44 misc type fixes in ssl by Dave Rodgman · 1 year, 9 months ago
- 8e0174a Add maximum ticket lifetime check by Jerry Yu · 1 year, 9 months ago
- cf91351 fix various issues by Jerry Yu · 1 year, 9 months ago
- 46c7926 Add maximum ticket lifetime check by Jerry Yu · 1 year, 9 months ago
- 5e378d7 ssl_misc: remove DES from the list of key types supporting CBC by Valerio Setti · 1 year, 9 months ago
- 01c4fa3 ssl: move MBEDTLS_SSL_HAVE internal symbols to ssl.h by Valerio Setti · 1 year, 9 months ago
- 7d7ce0e Merge pull request #8495 from lpy4105/issue/6322/driver-only-cipher_aead-tls by Manuel Pégourié-Gonnard · 1 year, 9 months ago gh-readonly-queue/development/pr-8495-4dec9ebdc2d0e49a87cfd5f0d7bc2dc9d21beae9
- 2bd56de ssl: replace MBEDTLS_SSL_HAVE_*_CBC with two seperate macros by Pengyu Lv · 1 year, 9 months ago
- 65458fa ssl: MBEDTLS_SSL_HAVE_* in ssl_misc.h by Pengyu Lv · 1 year, 9 months ago
- f1b86b0 ssl: add macro to indicate CBC mode is available by Pengyu Lv · 1 year, 9 months ago
- e870cc8 ssl: add macro for available key types by Pengyu Lv · 1 year, 9 months ago
- 4122c16 Merge pull request #6945 from lpy4105/issue/6935/ticket_flags-kex-mode-determination by Tom Cosgrove · 1 year, 9 months ago
- 8b6b41f Merge pull request #8434 from valeriosetti/issue8407 by Gilles Peskine · 1 year, 9 months ago
- 16799db update headers by Dave Rodgman · 1 year, 9 months ago
- dbd1e0d tls13: add helpers to check if psk[_ephemeral] allowed by ticket by Pengyu Lv · 1 year, 9 months ago
- 467271d ssl_misc: ignore ALG_CBC_PKCS7 for MBEDTLS_SSL_HAVE_xxx_CBC by Valerio Setti · 1 year, 9 months ago
- 1ebb6cd ssl_misc: add internal MBEDTLS_SSL_HAVE_[AES/ARIA/CAMELLIA]_CBC symbols by Valerio Setti · 1 year, 9 months ago
- 7b71171 Add check_ticket_flags helper function by Pengyu Lv · 1 year, 9 months ago
- 1eb0bd5 Add not-received status by Jerry Yu · 2 years, 6 months ago
- cf29c5d ssl: don't require MBEDTLS_ECP_DP with TLS1.3 by Valerio Setti · 1 year, 11 months ago
- f250ada tls/oid: add PSA_WANT_ECC_xxx guards together with existing MBEDTLS_ECP_DP_xxx by Valerio Setti · 2 years ago
- eda1b1f Merge pull request #7921 from valeriosetti/issue7613 by Gilles Peskine · 1 year, 10 months ago
- c98f8d9 Merge branch 'development' into safer-ct5 by Dave Rodgman · 2 years ago
- e9646ec tls: fix guards for ECDSA support by Valerio Setti · 2 years ago
- 45d56f3 tls: replace ECDSA_C and PK_CAN_ECDSA_SOME with key exchange related ones by Valerio Setti · 2 years ago
- de8f56e Merge pull request #7884 from valeriosetti/issue7612 by Manuel Pégourié-Gonnard · 2 years ago
- ea59c43 tls: fix a comment a rename a variable/symbol by Valerio Setti · 2 years ago
- 828b3ac Merge pull request #7848 from valeriosetti/issue7749 by Manuel Pégourié-Gonnard · 2 years ago
- 6aca2c9 Merge pull request #7716 from mpg/psa-util-internal by Gilles Peskine · 2 years, 1 month ago
- da403b7 tls: use already existing symbols to size the buffer for XXDḦ peer key by Valerio Setti · 2 years, 1 month ago
- 49e6907 tls: replace ECP_LIGHT occurrencies with PK_HAVE_ECC_KEYS by Valerio Setti · 2 years, 1 month ago
- 6eb0054 tls: fix guards for legacy ECDH contexts by Valerio Setti · 2 years, 1 month ago
- 3d237b5 ssl_misc: fix guards for PSA data used in XXDH key exchanges by Valerio Setti · 2 years, 1 month ago
- c2232ea tls: replace PK_CAN_ECDH guards with new helpers by Valerio Setti · 2 years, 1 month ago
- 7aeec54 tls: replace ECDH_C guards with new helpers by Valerio Setti · 2 years, 1 month ago
- d55d66f Fix missing includes by Manuel Pégourié-Gonnard · 2 years, 1 month ago
- 2be8c63 Create psa_util_internal.h by Manuel Pégourié-Gonnard · 2 years, 2 months ago
- 408569f Adapt function name: mbedtls_ssl_tls13_generate_and_write_dh_key_exchange by Przemek Stekiel · 2 years, 1 month ago
- 7ac93be Adapt names: dh -> xxdh by Przemek Stekiel · 2 years, 1 month ago
- d5f79e7 Adapt functions names for ffdh by Przemek Stekiel · 2 years, 1 month ago
- 6f19985 Adapt handshake fields to ffdh by Przemek Stekiel · 2 years, 1 month ago
- e03ddbb Use valid size of peerkey buffer (EC vs FF) by Przemek Stekiel · 2 years, 1 month ago
- 56b159a Merge pull request #7627 from mprse/ffdh_tls13_v2 by Manuel Pégourié-Gonnard · 2 years, 1 month ago
- c216d94 Merge remote-tracking branch 'origin/development' into safer-ct5 by Dave Rodgman · 2 years, 1 month ago
- da4fba6 Further code optimizations by Przemek Stekiel · 2 years, 2 months ago
- 29c219c Combine mbedtls_ssl_tls13_generate_and_write_ecdh/ffdh_key_exchange functions by Przemek Stekiel · 2 years, 2 months ago
- 6370662 Adapt guards for FFDH by Przemek Stekiel · 2 years, 2 months ago
- cceb933 Add FFDH definitions and translation functions by Przemek Stekiel · 2 years, 2 months ago
- 6076f41 Remove hash_info.[ch] by Manuel Pégourié-Gonnard · 2 years, 4 months ago
- 2801f7f Move mbedtls_ct_hmac into ssl_msg.c by Dave Rodgman · 2 years, 3 months ago
- 3f00b84 pk: fix build issues by Valerio Setti · 2 years, 2 months ago